<!--
  This file is a part of the open-eBackup project.
  This Source Code Form is subject to the terms of the Mozilla Public License, v. 2.0.
  If a copy of the MPL was not distributed with this file, You can obtain one at
  http://mozilla.org/MPL/2.0/.
  
  Copyright (c) [2024] Huawei Technologies Co.,Ltd.
  
  THIS SOFTWARE IS PROVIDED ON AN "AS IS" BASIS, WITHOUT WARRANTIES OF ANY KIND,
  EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO NON-INFRINGEMENT,
  MERCHANTABILITY OR FIT FOR A PARTICULAR PURPOSE.
  -->


<!--
  This file is a part of the open-eBackup project.
  This Source Code Form is subject to the terms of the Mozilla Public License, v. 2.0.
  If a copy of the MPL was not distributed with this file, You can obtain one at
  http://mozilla.org/MPL/2.0/.
  
  Copyright (c) [2024] Huawei Technologies Co.,Ltd.
  
  THIS SOFTWARE IS PROVIDED ON AN "AS IS" BASIS, WITHOUT WARRANTIES OF ANY KIND,
  EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO NON-INFRINGEMENT,
  MERCHANTABILITY OR FIT FOR A PARTICULAR PURPOSE.
  -->

<!--
  This file is a part of the open-eBackup project.
  This Source Code Form is subject to the terms of the Mozilla Public License, v. 2.0.
  If a copy of the MPL was not distributed with this file, You can obtain one at
  http://mozilla.org/MPL/2.0/.
  
  Copyright (c) [2024] Huawei Technologies Co.,Ltd.
  
  THIS SOFTWARE IS PROVIDED ON AN "AS IS" BASIS, WITHOUT WARRANTIES OF ANY KIND,
  EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO NON-INFRINGEMENT,
  MERCHANTABILITY OR FIT FOR A PARTICULAR PURPOSE.
  -->

<!--
  This file is a part of the open-eBackup project.
  This Source Code Form is subject to the terms of the Mozilla Public License, v. 2.0.
  If a copy of the MPL was not distributed with this file, You can obtain one at
  http://mozilla.org/MPL/2.0/.
  
  Copyright (c) [2024] Huawei Technologies Co.,Ltd.
  
  THIS SOFTWARE IS PROVIDED ON AN "AS IS" BASIS, WITHOUT WARRANTIES OF ANY KIND,
  EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO NON-INFRINGEMENT,
  MERCHANTABILITY OR FIT FOR A PARTICULAR PURPOSE.
  -->

<!DOCTYPE html
  PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html lang="zh-cn" xml:lang="zh-cn">
<head>
      <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
   
<meta http-equiv="X-UA-Compatible" content="IE=edge">
<meta name="DC.Type" content="topic">
<meta name="DC.Title" content="步骤4：注册NAS共享">
<meta name="product" content="">
<meta name="DC.Relation" scheme="URI" content="zh-cn_topic_0000001839239709.html">
<meta name="prodname" content="">
<meta name="version" content="">
<meta name="brand" content="30-OceanProtect 备份一体机 1.5.0-1.6.0 帮助中心">
<meta name="DC.Publisher" content="20240320">
<meta name="DC.Format" content="XHTML">
<meta name="DC.Identifier" content="ZH-CN_TOPIC_0000001839239733">
<meta name="DC.Language" content="zh-cn">
<link rel="stylesheet" type="text/css" href="public_sys-resources/commonltr.css">
<title>步骤4：注册NAS共享</title>
</head>
<body style="clear:both; padding-left:10px; padding-top:5px; padding-right:5px; padding-bottom:5px"><a name="ZH-CN_TOPIC_0000001839239733"></a><a name="ZH-CN_TOPIC_0000001839239733"></a>

<h1 class="topictitle1">步骤4：注册NAS共享</h1>
<div><p>当您需要保护的NAS共享所在存储设备类型不是OceanStor V5、OceanStor Pacific或者NetApp ONTAP，或者您只需要保护某个NAS共享时，可以手动注册NAS共享到<span>OceanProtect</span>。</p>
<div class="section"><h4 class="sectiontitle">操作步骤</h4><ol><li><span>选择<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_uicontrol79081114124111">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_text99081414144119">保护</span> &gt; 文件系统 &gt; NAS共享”</span>。</span><p><div class="note" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_note397892312184"><img src="public_sys-resources/note_3.0-zh-cn.png"><span class="notetitle"> </span><div class="notebody"><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_p5978112341818">对于1.5.0版本，请选择<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_uicontrol129783237180">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001839142377_text10978172391818">保护</span> &gt; 文件服务 &gt; NAS共享”</span>。</p>
</div></div>
</p></li><li><span>单击<span class="uicontrol">“<span>注册</span>”</span>，注册NAS共享。</span><p><div class="p">NAS共享注册信息如<a href="#ZH-CN_TOPIC_0000001839239733__table1929515516558">表1</a>所示。
<div class="tablenoborder"><a name="ZH-CN_TOPIC_0000001839239733__table1929515516558"></a><a name="table1929515516558"></a><table cellpadding="4" cellspacing="0" summary="" id="ZH-CN_TOPIC_0000001839239733__table1929515516558" frame="border" border="1" rules="all"><caption><b>表1 </b>NAS共享注册信息说明</caption><colgroup><col style="width:25.6%"><col style="width:74.4%"></colgroup><thead align="left"><tr><th align="left" class="cellrowborder" valign="top" width="25.6%" id="mcps1.3.2.2.2.2.1.2.2.3.1.1"><p>参数</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="74.4%" id="mcps1.3.2.2.2.2.1.2.2.3.1.2"><p>说明</p>
</th>
</tr>
</thead>
<tbody><tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>FQDN/IP</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__p10295125555515">访问NAS共享的FQDN名称或者业务IP地址。</p>
<p id="ZH-CN_TOPIC_0000001839239733__p1278513189326">FQDN名称格式为<em id="ZH-CN_TOPIC_0000001839239733__i1721710819358">NAS共享所在的存储设备名称</em>.<em id="ZH-CN_TOPIC_0000001839239733__i12733111103514">存储设备所加入域的域名</em>。如NAS共享所在的存储设备名称为Huawei.Storage，存储设备所加入域的域名为huawei.com，则FQDN名称为Huawei.Storage.huawei.com。</p>
<div class="note" id="ZH-CN_TOPIC_0000001839239733__note93324353618"><span class="notetitle"> 说明： </span><div class="notebody"><p id="ZH-CN_TOPIC_0000001839239733__p53320310365">如果需要填写FQDN名称，请在<span id="ZH-CN_TOPIC_0000001839239733__text45421758151311">OceanProtect</span>设备管理界面配置DNS服务，使<span id="ZH-CN_TOPIC_0000001839239733__text4110125920135">OceanProtect</span>可以访问外部域名地址。配置DNS服务的详细操作，请参见<a href="zh-cn_topic_0000001839159813.html">配置DNS服务</a>。</p>
</div></div>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>共享名称</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p>NAS共享的名称。</p>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>共享协议</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p><span>NFS</span>或CIFS。</p>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>认证模式</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p>CIFS协议的认证模式，包含“<span>NTLM认证</span>”和“<span>Kerberos认证</span>”。</p>
<p>在<span>NTLM认证</span>模式下，需要输入<span>域名</span>、访问NAS共享的<span>用户名</span>和<span>密码</span>。</p>
<p>在<span>Kerberos认证</span>模式下，选择Kerberos认证信息。首次注册NAS共享时，请单击“<span>创建</span>”，配置Kerberos认证信息，参数说明如<a href="#ZH-CN_TOPIC_0000001839239733__table93413354118">表2</a>所示。</p>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>使用协议加密的方式连接共享</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p>当待保护的NAS共享开启<span class="uicontrol">“协议加密”</span>后，需要勾选此选项。</p>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>代理主机</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p>系统默认选择内置代理，当存在外置代理时，还可以选择外置代理。</p>
</td>
</tr>
<tr><td class="cellrowborder" valign="top" width="25.6%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.1 "><p><span>过滤规则</span></p>
</td>
<td class="cellrowborder" valign="top" width="74.4%" headers="mcps1.3.2.2.2.2.1.2.2.3.1.2 "><p>设置过滤规则，筛选需要备份的文件和目录。</p>
</td>
</tr>
</tbody>
</table>
</div>
</div>
<p>配置Kerberos认证参数，相关参数说明如<a href="#ZH-CN_TOPIC_0000001839239733__table93413354118">表2</a>。</p>

<div class="tablenoborder"><a name="ZH-CN_TOPIC_0000001839239733__table93413354118"></a><a name="table93413354118"></a><table cellpadding="4" cellspacing="0" summary="" id="ZH-CN_TOPIC_0000001839239733__table93413354118" frame="border" border="1" rules="all"><caption><b>表2 </b>Kerberos认证参数说明</caption><colgroup><col style="width:23.24%"><col style="width:76.75999999999999%"></colgroup><thead align="left"><tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row434173521115"><th align="left" class="cellrowborder" valign="top" width="23.24%" id="mcps1.3.2.2.2.2.3.2.3.1.1"><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1134143591114">参数</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="76.75999999999999%" id="mcps1.3.2.2.2.2.3.2.3.1.2"><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1334163541111">说明</p>
</th>
</tr>
</thead>
<tbody><tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row123412358116"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p434935141114"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text116228195434">名称</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p334173518110">自定义Kerberos认证名称。</p>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row83417352118"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p143513352112"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text13420328134312">主体名</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p16354357116">Kerberos认证的主体名。</p>
<div class="note" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_note1997805374919"><span class="notetitle"> 说明： </span><div class="notebody"><ul id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_ul53571451001"><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li133577516015">配置为Kerberos服务器上已配置的主体名，并且该主体名需要对要访问的资源具备读写权限。</li><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li17687183713589">如果恢复HDFS文件时要同时恢复HDFS ACL信息，那么此处注册的主体名需要具备HDFS超级用户权限。举例如下：<ul id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_ul10684153715580"><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li176852373586">如果大数据平台为FusionInsight或CDH，您可以在大数据平台将主体名加入supergroup中，使其具备HDFS超级用户权限。</li><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li986445365918">如果大数据平台为TDH，您可以在大数据平台为主体名添加admin角色，使其具备HDFS超级用户权限。</li></ul>
</li></ul>
</div></div>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row143514356116"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p0352355118"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text872344194318">配置方式</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><div class="p" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p14335165565315">Kerberos认证方式，与Kerberos服务器的配置保持一致。Kerberos支持以下两种认证方式：<ul id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_ul79681635144315"><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li1996820353434"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text54429228440">密码</span>：通过主体名+密码完成身份认证。</li><li id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_li20858113704310"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text9995192994418">Keytab文件</span>：通过主体+keytab文件完成身份认证。</li></ul>
</div>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row183523512112"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p15351835151118"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text114821547144418">配置文件</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1958995015013">Kerberos认证过程中使用的<span class="filepath" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_filepath1558985065011">“.conf”</span>配置文件（如：krb5.conf）。请联系Kerberos服务器管理员从Kerberos服务器获取该文件，单击<span><img id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_image958945045017" src="zh-cn_image_0000001792397360.png"></span>上传至管理界面。</p>
<div class="p" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p335113531110">由于Kerberos自身的问题，当配置文件中存在<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol1462119340419">“renew_lifetime”</span>参数时，需将其注释，否则可能导致注册失败。如：<pre class="screen" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_screen43313539415">#renew_lifetime = 7d</pre>
</div>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row12351358112"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p53510353119"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text132368547446">密码</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p63573513114">当<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol10967144612199">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text155548915452">配置方式</span>”</span>选择<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol478945111911">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text953102164617">密码</span>”</span>时，才需要配置该参数。</p>
<p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1477085011175">配置为<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol763018714189">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text1997411411465">主体名</span>”</span>的密码。</p>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row5425131213143"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p164257122145"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text1522326164613">确认密码</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1042541281412">确认<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol9284162064619">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text14284102010469">主体名</span>”</span>的密码。</p>
</td>
</tr>
<tr id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_row1728863716141"><td class="cellrowborder" valign="top" width="23.24%" headers="mcps1.3.2.2.2.2.3.2.3.1.1 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p112881037171415"><span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text19503531104618">Keytab文件</span></p>
</td>
<td class="cellrowborder" valign="top" width="76.75999999999999%" headers="mcps1.3.2.2.2.2.3.2.3.1.2 "><p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p374615219184">当<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol6701435124612">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text1170193513465">配置方式</span>”</span>选择<span class="uicontrol" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_uicontrol67464241815">“<span id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_text8150194415468">Keytab文件</span>”</span>时，才需要配置该参数。Kerberos认证过程中使用的<span class="filepath" id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_filepath19934532131518">“.keytab”</span>文件（如：krb5.keytab）。</p>
<p id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_p1836535991910">请联系Kerberos服务器管理员从Kerberos服务器获取该文件，单击<span><img id="ZH-CN_TOPIC_0000001839239733__zh-cn_topic_0000001792557040_image2782840141712" src="zh-cn_image_0000001792557096.png"></span>上传至管理界面。</p>
</td>
</tr>
</tbody>
</table>
</div>
</p></li><li><span>单击<span class="uicontrol">“<span>确定</span>”</span>。</span><p><p>注册成功后，已注册的NAS共享信息将在<span class="uicontrol">“<span>NAS共享</span>”</span>页面显示。</p>
</p></li></ol>
</div>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>父主题：</strong> <a href="zh-cn_topic_0000001839239709.html">备份NAS共享</a></div>
</div>
</div>

<div class="hrcopyright"><hr size="2"></div><div class="hwcopyright">版权所有 &copy; 华为技术有限公司</div></body>
</html>